summaryrefslogtreecommitdiff
path: root/test/results/flow-info/default/dns_exfiltration.pcap.out
diff options
context:
space:
mode:
Diffstat (limited to 'test/results/flow-info/default/dns_exfiltration.pcap.out')
-rw-r--r--test/results/flow-info/default/dns_exfiltration.pcap.out6
1 files changed, 3 insertions, 3 deletions
diff --git a/test/results/flow-info/default/dns_exfiltration.pcap.out b/test/results/flow-info/default/dns_exfiltration.pcap.out
index 5cad6ddb7..ba753e832 100644
--- a/test/results/flow-info/default/dns_exfiltration.pcap.out
+++ b/test/results/flow-info/default/dns_exfiltration.pcap.out
@@ -7,9 +7,9 @@
detection-update: [.....1] [ip4][..udp] [.192.168.220.56][56373] -> [192.168.203.167][...53] [DNS][Unknown][Network][Acceptable][e1aa8f8fdb1bbe8d5e04952141f7d4f82c7e3b06dcc8b87fad7a.19e4d098dc8c618f8d81cfeb02]
RISK: Susp DGA Domain name, Risky Domain Name
analyse: [.....1] [ip4][..udp] [.192.168.220.56][56373] -> [192.168.203.167][...53] [DNS][Unknown][Network][Acceptable]
- min| max| avg| stddev| variance| entropy
- [IAT.........: 0.004| 1.036| 0.914| 0.282| 79410.348| 4.800]
- [PKTLEN......: 87.000| 372.000| 132.400| 59.100| 3497.900| 4.900]
+ min| max| avg| stddev| variance| entropy
+ [IAT.........: 0.004| 1.036| 0.914| 0.282| 79410.348| 4.800]
+ [PKTLEN......: 87.000| 372.000| 132.400| 59.100| 3497.900| 4.900]
[BINS(c->s)..: 0,13,1,1,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[BINS(s->c)..: 0,0,0,13,1,0,0,1,0,0,1,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0,0]
[DIRECTIONS..: 0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1,0,1]